Building an Information Technology Security Awareness and Training Program

nist

  • 出版商: CreateSpace Independ
  • 出版日期: 2013-12-12
  • 售價: $800
  • 貴賓價: 9.5$760
  • 語言: 英文
  • 頁數: 72
  • 裝訂: Paperback
  • ISBN: 1494469979
  • ISBN-13: 9781494469979
  • 相關分類: 資訊安全
  • 海外代購書籍(需單獨結帳)

商品描述

NIST Special Publication 800-50, Building An Information Technology Security Awareness and Training Program, provides guidance for building an effective information technology (IT) security program and supports requirements specified in the Federal Information Security Management Act (FISMA) of 2002 and the Office of Management and Budget (OMB) Circular A-130, Appendix III.The document identifies the four critical steps in the life cycle of an IT security awareness and training program: 1) awareness and training program design (Section 3); 2) awareness and training material development (Section 4); 3) program implementation (Section 5); and 4) post-implementation (Section 6).The document is a companion publication to NIST Special Publication 800-16, Information Technology Security Training Requirements: A Role- and Performance-Based Model. The two publications are complementary - SP 800-50 works at a higher strategic level, discussing how to build an IT security awareness and training program, while SP 800-16 is at a lower tactical level, describing an approach to role-based IT security training.